Title :
A Hybrid Technique Using Multi-objective Particle Swarm Optimization and Random Forests for PROBE Attacks Detection in a Network
Author :
Malik, Arif Jamal ; Khan, Faheem
Author_Institution :
Dept. of Comput. Sci., Nat. Univ. of Comput. & Emerging Sci., Islamabad, Pakistan
Abstract :
A system connected to a network is an open choice for network intrusions unless a powerful intrusion detection or prevention system is implemented. Network security has become a serious issue due to increased unauthorized access and manipulation of network resources. Evolutionary approaches play an important role in identifying attacks with high detection rates and low false discovery rates. In this paper, a binary version of multi-objective particle swarm optimization (PSO) approach is used to detect PROBE attacks in a network. A vector evaluated PSO approach is used in the proposed technique with two objectives i.e., intrusion detection rate and false discovery rate, to guide the process of feature selection. The experiments are performed using the well-known KDD99Cup dataset. Multi-objective PSO approach is used for feature selection from a set of 41 features and Random Forests (RF), a highly accurate and fast algorithm, is used for classification. Empirical results show that the proposed technique outperforms well-known classification and regression techniques in most of the cases.
Keywords :
authorisation; data mining; evolutionary computation; particle swarm optimisation; pattern classification; random processes; regression analysis; KDD99Cup dataset; PROBE attacks detection; evolutionary approach; false discovery rate; feature selection; hybrid technique; intrusion detection rate; intrusion prevention system; multiobjective PSO approach; multiobjective particle swarm optimization approach; network intrusions; network resource manipulation; network security; pattern classification; random forests; regression techniques; unauthorized access; Classification algorithms; Intrusion detection; Probes; Radio frequency; Training; Vectors; Vegetation; Intrusion detection; Multi-objective optimization; Particle swarm optimization (PSO); Random forests (RF);
Conference_Titel :
Systems, Man, and Cybernetics (SMC), 2013 IEEE International Conference on
Conference_Location :
Manchester
DOI :
10.1109/SMC.2013.422